ZeroHour

CVE-2018-14513

PoC
CVSS 3.0
6.1 medium
EPSS
1%p64
Published
()
Modified
Description

An XSS vulnerability was discovered in WUZHI CMS 4.1.0. There is persistent XSS that allows remote attackers to inject arbitrary web script or HTML via the form[content] parameter to the index.php?m=feedback&f=index&v=contact URI.

Vendors
wuzhi cms project
Products
wuzhi cms
Weakness
CWE-79
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.